CVE-2005-2269
Description
Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 does not properly verify the associated types of DOM node names within the context of their namespaces, which allows remote attackers to modify certain tag properties, possibly leading to execution of arbitrary script or code, as demonstrated using an XHTML document with IMG tags with custom properties (XHTML node spoofing).
Risk Information
Base Score
6.3
MODERATE
Vector
AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
EPSS Score
Exploitation Probability
7.514
Associated Vulnerability
| Vulnerability | OS Platform |
|---|---|
| Multiple vulnerabilities affected in Mozilla Firefox (x64) 1.0.4 | Windows |
| Multiple vulnerabilities affected in Mozilla_Firefox 1.0.4 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Firefox (x64) 0.10.1 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Firefox (x64) 0.8 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Firefox (x64) 0.9 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Firefox (x64) 0.9.1 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Firefox (x64) 0.9.2 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Firefox (x64) 0.9.3 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Firefox (x64) 1.0 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Firefox (x64) 1.0.1 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Firefox (x64) 1.0.2 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Firefox (x64) 1.0.3 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Firefox (x64) 1.0.4 | Windows |
| Multiple Vulnerabilities are affected in Mozilla_Firefox 0.10.1 | Windows |
| Multiple Vulnerabilities are affected in Mozilla_Firefox 0.8 | Windows |
| Multiple Vulnerabilities are affected in Mozilla_Firefox 0.9 | Windows |
| Multiple Vulnerabilities are affected in Mozilla_Firefox 0.9.1 | Windows |
| Multiple Vulnerabilities are affected in Mozilla_Firefox 0.9.2 | Windows |
| Multiple Vulnerabilities are affected in Mozilla_Firefox 0.9.3 | Windows |
| Multiple Vulnerabilities are affected in Mozilla_Firefox 1.0 | Windows |
| Multiple Vulnerabilities are affected in Mozilla_Firefox 1.0.1 | Windows |
| Multiple Vulnerabilities are affected in Mozilla_Firefox 1.0.2 | Windows |
| Multiple Vulnerabilities are affected in Mozilla_Firefox 1.0.3 | Windows |
| Multiple Vulnerabilities are affected in Mozilla_Firefox 1.0.4 | Windows |
Patch Details
Click to see the patches provided by ManageEngine for this CVE
| Patch ID | Patch Description |
|---|---|
| PATCH-343016 | Mozilla Firefox (x64) (132.0.2) |
| PATCH-343015 | Mozilla Firefox (132.0.2) |
References
https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234